phBot.exe

phBot

Ryan Clouser

Publisher:
ProjectHax  (signed by Ryan Clouser)

Product:
phBot

Description:
phBot - Silkroad Online Bot

Version:
11.9.7.0

MD5:
21d2971c2c8852e4cfc9331b976aa43f

SHA-1:
be2a7067c5fb9ee1ff00f2d271b7c244526fe9c0

SHA-256:
c517f8bf08e07b4218a502fa5f00839ba14479d07b70b054677ef0fdd0c57999

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 9:31:27 AM UTC  (today)

File size:
19.9 MB (20,820,976 bytes)

Product version:
11.9.7.0

Copyright:
Copyright (C) 2015 ProjectHax

Original file name:
phBot.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Signed by:

Authority:
StartCom Ltd.

Valid from:
11/8/2013 2:13:03 PM

Valid to:
11/9/2015 12:34:04 AM

Subject:
E=ryan@projecthax.com, CN=Ryan Clouser, L=Camp Hill, S=Pennsylvania, C=US, Description=GDbAxi2Z0A7Em5K7

Issuer:
CN=StartCom Class 2 Primary Intermediate Object CA, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL

Serial number:
0BB8

File PE Metadata
Compilation timestamp:
8/25/2015 1:11:57 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
393216:AXYnE81oBHMoNqGGXOWiA711kCKuyNxdSCQRv:AXYVoMoNGXOt8LkpH4

Entry address:
0x1E9E8CA

Entry point:
51, 60, C7, 44, 24, 20, 4A, A2, 94, 97, 60, 68, EB, 3E, F7, E0, E9, 54, 6D, 02, 00, 7A, E2, 42, 95, A6, 32, 65, 8A, DD, 52, 0E, 4F, 29, A8, D9, 8C, 2A, 08, FC, CF, E7, 4F, DD, EE, 5A, 6D, B7, 00, 10, DB, 44, 90, 8C, 5F, B1, 3A, F2, C5, 0B, 14, A6, 9D, 86, 2B, C1, 56, 3F, 08, 23, 4B, A1, 2D, A4, AD, C6, B9, 72, 9A, 76, BD, 26, B0, 36, AD, 7B, 7B, F8, 7C, 39, C5, 3E, 84, 75, 26, 26, 62, AF, 18, A6, 96, 64, B1, 7B, 4B, A8, 23, 72, CC, AB, A4, 84, 93, 5A, 13, F3, 78, F6, BB, 13, F0, B3, D7, 73, 93, 5A, 03, A4...
 
[+]

Entropy:
7.9147  (probably packed)

Code size:
9.1 MB (9,525,248 bytes)

Scan phBot.exe - Powered by Reason Core Security